[ CCing pspp-users@gnu.org ] On Mon, Jan 03, 2022 at 07:29:20AM +0000, therese.h...@kronoberg.se wrote: Given the recent situation regarding the vulnerability risk around Log4J, I would be grateful if you could answer the following questions: Does the product contain the Log4J framework?
NO. * Is your product vulnerable to CVE-2021-44228? NO. * How do you intend to handle the vulnerability? Not applicable. * How should we act as a customer? Not applicable. * IF there is no immediate solution WHEN this and WHAT do we do in the meantime? Not applicable. Please note, PSPP comes with NO WARRANTY and neither the authors nor copyright holders will be liable for loss or damage caused by use of the program. Thank you.